Wrong redirect with mysql-secure (full secure) install

80 views
Skip to first unread message

Andrea Ricci

unread,
Jan 15, 2020, 5:33:57 AM1/15/20
to dcm4che
I'm trying to install the release 5.20.0 fully secured with different keycloak port.
I configured keycloak with ports: 18080, 18443, 19990, 19993.
And wildfly looks configured correctly in my opinion:
[standalone@localhost:9990 /] /system-property=auth-server-url:query()
{
   
"outcome" => "success",
   
"result" => {"value" => "http://10.0.39.185:18080/auth"}
}

[standalone@localhost:9990 /] /subsystem=keycloak/secure-deployment=dcm4chee-arc-ui2-5.20.0-secure.war:query()
{
   
"outcome" => "success",
   
"result" => {
       
"adapter-state-cookie-path" => undefined,
       
"allow-any-hostname" => false,
       
"always-refresh-token" => false,
       
"auth-server-url" => "http://10.0.39.185:18080/auth",
       
"auth-server-url-for-backend-requests" => undefined,
       
"autodetect-bearer-only" => false,
       
"bearer-only" => false,
       
"client-key-password" => undefined,
       
"client-keystore" => undefined,
       
"client-keystore-password" => undefined,
       
"confidential-port" => 8443,
       
"connection-pool-size" => undefined,
       
"cors-allowed-headers" => undefined,
       
"cors-allowed-methods" => undefined,
       
"cors-exposed-headers" => undefined,
       
"cors-max-age" => undefined,
       
"disable-trust-manager" => false,
       
"enable-basic-auth" => false,
       
"enable-cors" => false,
       
"expose-token" => false,
       
"ignore-oauth-query-parameter" => false,
       
"min-time-between-jwks-requests" => undefined,
       
"principal-attribute" => undefined,
       
"proxy-url" => undefined,
       
"public-client" => true,
       
"public-key-cache-ttl" => undefined,
       
"realm" => "dcm4che",
       
"realm-public-key" => undefined,
       
"register-node-at-startup" => false,
       
"register-node-period" => undefined,
       
"resource" => "dcm4chee-arc-ui",
       
"ssl-required" => "external",
       
"token-minimum-time-to-live" => undefined,
       
"token-store" => undefined,
       
"truststore" => undefined,
       
"truststore-password" => undefined,
       
"turn-off-change-session-id-on-login" => false,
       
"use-resource-role-mappings" => false,
       
"verify-token-audience" => false,
       
"credential" => undefined,
       
"redirect-rewrite-rule" => undefined
   
}
}


[standalone@localhost:9990 /] /subsystem=keycloak/secure-deployment=dcm4chee-arc-war-5.20.0-secure.war:query()
{
   
"outcome" => "success",
   
"result" => {
       
"adapter-state-cookie-path" => undefined,
       
"allow-any-hostname" => false,
       
"always-refresh-token" => false,
       
"auth-server-url" => "http://10.0.39.185:18080/auth",
       
"auth-server-url-for-backend-requests" => undefined,
       
"autodetect-bearer-only" => false,
       
"bearer-only" => true,
       
"client-key-password" => undefined,
       
"client-keystore" => undefined,
       
"client-keystore-password" => undefined,
       
"confidential-port" => 8443,
       
"connection-pool-size" => undefined,
       
"cors-allowed-headers" => undefined,
       
"cors-allowed-methods" => undefined,
       
"cors-exposed-headers" => undefined,
       
"cors-max-age" => undefined,
       
"disable-trust-manager" => false,
       
"enable-basic-auth" => false,
       
"enable-cors" => false,
       
"expose-token" => false,
       
"ignore-oauth-query-parameter" => false,
       
"min-time-between-jwks-requests" => undefined,
       
"principal-attribute" => undefined,
       
"proxy-url" => undefined,
       
"public-client" => false,
       
"public-key-cache-ttl" => undefined,
       
"realm" => "dcm4che",
       
"realm-public-key" => undefined,
       
"register-node-at-startup" => false,
       
"register-node-period" => undefined,
       
"resource" => "dcm4chee-arc-rs",
       
"ssl-required" => "external",
       
"token-minimum-time-to-live" => undefined,
       
"token-store" => undefined,
       
"truststore" => undefined,
       
"truststore-password" => undefined,
       
"turn-off-change-session-id-on-login" => false,
       
"use-resource-role-mappings" => false,
       
"verify-token-audience" => false,
       
"credential" => undefined,
       
"redirect-rewrite-rule" => undefined
   
}
}

It looks like that ui2 works properly but "rs" have wrong redirection. Where is my configuration wrong?

Kind regards


PS I think that documentation to install miss the part where it's required to create the administrator user with script add-user-keycloak.sh or add-user-keycloak.bat


Andrea Ricci

unread,
Jan 20, 2020, 3:33:57 AM1/20/20
to dcm4che
If it's not a wrong configuration it could be a bug?
Reply all
Reply to author
Forward
0 new messages